Information Systems Security Manager (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Information Systems Security Manager (Cybersecurity): Leading cybersecurity engineering, Risk Management Framework execution, and continuous authorization activities for Department of Defense software factories and enterprise cloud environments with an accent on secure cloud-native delivery, compliance, and mission readiness. Focus on integrating Zero Trust, Kubernetes/OpenShift security, container hardening, and DevSecOps controls across classified environments.
Location: Full-time on-site in San Antonio, Texas, United States; support classified Unclassified, Secret, and SCI environments.
Company
provides intelligence, military, cybersecurity, and software engineering solutions for government and defense missions.
What you will do
- Lead RMF implementation for initial Authority to Operate and Continuous Authority to Operate activities.
- Develop and maintain security authorization packages, including SSPs, SARs, POA&Ms, and supporting artifacts.
- Coordinate assessments with Authorizing Officials, Security Control Assessors, penetration testing teams, and engineering organizations.
- Integrate cybersecurity requirements into Agile and SAFe software development and DevSecOps pipelines.
- Manage vulnerability remediation, STIG implementation, continuous monitoring, and control validation across development, testing, staging, and production.
- Prepare executive briefings, risk assessments, and mitigation recommendations for government leadership.
Requirements
- U.S. citizenship and an active TS/SCI clearance renewed within the last 2 years are required, along with a CI polygraph within the last 5 years.
- Bachelor’s degree in Cybersecurity, Computer Science, Engineering, Information Technology, or a related field.
- CISSP, CASP+, Security+, or an equivalent DoD 8140 certification.
- At least nine years supporting Department of Defense cybersecurity missions and at least nine years as an ISSM, ISSE, or senior cybersecurity engineer.
- Experience with RMF, ATO, continuous monitoring, DevSecOps, Agile or SAFe development, and enterprise cloud environments.
- Knowledge of NIST RMF, NIST 800-53, CNSSI guidance, DoD cybersecurity policy, STIGs, and senior-level government briefings.
Nice to have
- TS/SCI clearance with CI polygraph and an advanced degree in a relevant field.
- CISSP-ISSMP, AWS Security Specialty, or CCSP certification.
- Experience with software factories, Kubernetes, OpenShift, Iron Bank, hardened containers, Continuous ATO, and Zero Trust architectures.
- Experience with IL4, IL5, or IL6 cloud environments and Cyber Operations or Cyber Penetration Teams.
- Experience supporting multiple military services and Combatant Commands.
Culture & Benefits
- Medical insurance with company cost sharing for employees and dependents.
- Company-paid dental, vision, short-term disability, and long-term disability insurance.
- 401(k) plan with a company match and immediate vesting.
- Paid leave and holidays, life and AD&D insurance.
- Tuition and training reimbursement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →